Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-03210
HistoryJan 08, 2022 - 12:00 a.m.

WordPress Cross-Site Scripting Vulnerability (CNVD-2022-03210)

2022-01-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
11

0.004 Low

EPSS

Percentile

72.5%

WordPress is a set of blogging platforms developed by the WordPress Foundation using the PHP language. The platform supports the hosting of personal blog sites on servers with PHP and MySQL. WordPress has a cross-site scripting vulnerability in versions prior to 5.8.3, which stems from a lack of data validation filtering of user-supplied data and output. An attacker could exploit the vulnerability to execute execute JavaScript or perform a stored XSS attack.

CPENameOperatorVersion
wordpress wordpresslt5.8.3